CVE Database


Impact: Low
Public: 2004-08-17


The MITRE CVE dictionary describes this issue as:

GNU glibc 2.3.4 before, 2.3.3 before, and 2.3.2 before 2.3.2-r10 does not restrict the use of LD_DEBUG for a setuid program, which allows local users to gain sensitive information, such as the list of symbols used by the program.

Find out more about CVE-2004-1453 from the MITRE CVE dictionary and NIST NVD.

Red Hat security errata

Platform Errata Release Date
Red Hat Enterprise Linux version 2.1 (glibc) RHSA-2005:261 April 28, 2005
Red Hat Enterprise Linux version 3 (glibc) RHSA-2005:256 May 18, 2005

External References

This page is generated automatically and has not been checked for errors or omissions.

For clarification or corrections please contact the Red Hat Security Response Team.